Pseudorandomness of Ring-LWE for Any Ring and Modulus
IACR Cryptology ePrint Archive, Volume 2017, 2017.
We give a polynomial-time quantum reduction from worst-case (ideal) lattice problems directly to decision (Ring-)LWE. This extends to decision all the worst-case hardness results that were previously known for the search version, for the same or even better parameters and with no algebraic restrictions on the modulus or number field. Inde...More
Full Text (Upload PDF)
PPT (Upload PPT)